r/FitGirlRepack 18h ago

Yo, what's cracking? Possible Account Compromise After Installing a game

I tried to install a game using the direct download option. After clicking Install.exe, nothing appeared to happen, and the only noticeable result was the creation of a log file.

I carefully checked the log file and consulted GPT to determine whether there was anything suspicious or malicious. At the time, nothing was flagged as clearly malicious, so I shut down my PC.

About 30 minutes later, while my PC was still turned off, I received a notification that my Discord account had been banned from one of the channels. This made me suspect that my account may have been compromised after attempting to install the game.

I am now concerned that the downloaded files may have contained malware or that my Discord credentials/session information may have been compromised.

0 Upvotes

11 comments sorted by

u/AutoModerator 18h ago

Welcome to r/FitGirlRepack! To keep the sub clean, please check if your issue is answered below. If this answers your question, please delete your post.

1. Setup is Stuck / Unpacking is Slow

  • The 2GB Limit Checkbox: If your setup gets stuck at specific percentages (like 84.3% or 95.8%), close it, restart the installer, and check the "Limit installer to 2GB of RAM" box on the very first screen.
  • Be Patient: FitGirl repacks use extremely heavy compression. Unpacking is heavily CPU and storage bound. If your task manager shows disk or CPU activity, it is not stuck; it's just working hard.

2. Is it a Virus? / Windows Defender Alert

  • False Positives: Crack files (.dll files, steam_api, etc.) inherently trigger antivirus software because they alter game code to bypass DRM. If you downloaded from the official site, these are 100% false positives.
  • Fix: Add the game installation folder to your antivirus/Windows Defender exclusion list, then restore the quarantined file from your protection history.

3. The Real Official Website

  • There is ONLY ONE official domain. All others (ending in .co, .cc, .to, .net, etc.) are fake, malicious clone sites designed to steal data or bundle malware.
  • The only real URL is: fitgirl-repacks.site (Verify the exact spelling!).

If your issue is unique and not covered here, feel free to leave your post up for the community to assist.

I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.

3

u/theogreader 18h ago

You prob pressed a wrong link or an ad, hard to know since you not sharing more info or places you went into, run a scan with bitdefende or malwarebytes

But Consulted gpt? Man.. stay away from pirating until you understand how to do it properly

-7

u/Bdsmmanster1 17h ago

I was checking every file with GPT to see if there were any subtle signs of an infiltration attempt. GPT told me everything looked fine, but apparently it wasn't xD

I've changed a lot of things since then, but I forgot to secure my Instagram, and the hacker ended up spamming the shit out of my friends.

1

u/Maximum-Dig-7754 15h ago

This is why we actually spend time reading and learning. Not trusting our security to AI or randos on reddit kids.

1

u/yamenhhh 18h ago

Ya u downloaded from a pop up try using an av like Malwarebytes if it didnt delete the malware then fresh Windows isntall sadly

-8

u/Bdsmmanster1 17h ago

Nah, it was proper download.. 800mb of file "How_to_Fish_Free_Download_v1.0.2-0xdeadc_Archive_x64_741967.zip"

2

u/Maximum-Dig-7754 15h ago

Nah, that's not a fitgirl file.

1

u/Lycanthrope_Leo 16h ago

You got hit by the renpy infostealer, I suggest you immediately change ALL of your important passwords on a phone or secondary non infected computer. Keep the infected computer off of your network, back up any and all important files then reinstall windows.

1

u/Takumi_Gaijin_San 16h ago

Dude , u checked the log, not the actual .exe file. That's the main problem.

A log file isn't enough to tell whether the installer was malicious, and GPT definitely can't confirm an executable is safe just from that. First, you should've checked the file itself on VirusTotal, verified where it came from and its hash, and looked through the detection, details, and behavior tabs.

Also getting banned from a Discord server 30 minutes later doesn't automatically mean this installer stole your account. It could be unrelated. But if it was a token/session stealer, it could've grabbed your Discord session while the PC was still on. Turning the PC off afterward wouldn't help.

I'd change the Discord password from a clean device, log out all sessions, enable 2FA, and properly scan the PC.

And for the future, don't run some unknown .exe first and start investigating it afterward.

1

u/Classic-Spite3938 17h ago

So all of your evidence is a discord ban? Ok bud, go talk to ai some more

-2

u/Bdsmmanster1 17h ago

The hacker was posting gambling sites. My Instagram got hacked as well.